CVE-2023-23373: QNAP QUSBCAM2

High severity, CVSS 8.8. EPSS: 1.1% chance of exploitation in the next 30 days.

An OS command injection vulnerability has been reported to affect QUSBCam2. If exploited, the vulnerability could allow users to execute commands via a network. We have already fixed the vulnerability in the following version: QUSBCam2 2.0.3 ( 2023/06/15 ) and later

Affected products

  • QNAP QUSBCAM2: from 2.0.0, before 2.0.3 (fixed in 2.0.3)

Published 2023-10-20. Last modified 2026-06-17.